Success

Get it in reality, not in a dream

Be Stronger

Stronger than the past

Craete your future

Your way is your choice

Be Faster

Make our move,create our future.

Make your dreams come true

Your dream is a picture of your future

Tuesday, July 24, 2012

ACL



ROUTER 0

 

Router>ena

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router (config)#int fa0/0

Router (config-if)#ip add 172.16.10.1 255.255.255.0

Router (config-if)#no shut

 

 

Route (config-if)#exit

Router(config)#int fa1/0

Router (config-if)#ip add 172.16.20.1 255.255.255.0

Router(config-if)#no shut

 

 

Router(config-if)#exit

Router(config)#int se2/0

Router(config-if)#ip add 172.16.30.1 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface Serial2/0, changed state to down

Router(config-if)#exit

Router(config)#router eigrp 10

Router(config-router)#network 172.16.10.0 0.0.0.255

Router(config-router)#network 172.16.20.0 0.0.0.255

Router(config-router)#network 172.16.30.0 0.0.0.255

Router(config-router)#exit

Router(config)#exit

 

 

 

 

ROUTER 1

 

Router>ena

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router(config)#int fa0/0

Router(config-if)#ip add 172.16.40.1 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up

 

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up

 

Router(config-if)#exit

Router(config)#int fa1/0

Router(config-if)#ip add 172.16.50.1 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface FastEthernet1/0, changed state to up

 

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0, changed state to up

 

Router(config-if)#exit

Router(config)#int se2/0

Router(config-if)#ip add 172.16.30.2 255.255.255.0

Router(config-if)#clock rate 64000

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface Serial2/0, changed state to up

 

Router(config-if)#exit

Router(config)#int se3/0

%LINEPROTO-5-UPDOWN: Line protocol on Interface Serial2/0, changed state to up

Router(config-if)#ip add 172.16.60.1 255.255.255.0

Router(config-if)#clock rate 64000

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface Serial3/0, changed state to down

Router(config-if)#exit

Router(config)#router eigrp 10

Router(config-router)#network 172.16.40.0 0.0.0.255

Router(config-router)#network 172.16.50.0 0.0.0.255

Router(config-router)#network 172.16.30.0 0.0.0.255

Router(config-router)#

%DUAL-5-NBRCHANGE: IP-EIGRP 10: Neighbor 172.16.30.1 (Serial2/0) is up: new adjacency

 

Router(config-router)#network 172.16.60.0 0.0.0.255

Router(config-router)#exit

Router(config)#exit

 

%SYS-5-CONFIG_I: Configured from console by console

Router#

 

 

Router 2

 

Router>ena

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router(config)#hostname Router

Router(config)#int fa0/0

Router(config-if)#ip add 172.16.70.1 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up

 

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up

 

Router(config-if)#exit

Router(config)#int fa1/0

Router(config-if)#ip add 172.16.80.1 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface FastEthernet1/0, changed state to up

 

%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0, changed state to up

 

Router(config-if)#exit

Router(config)#int se2/0

Router(config-if)#ip add 172.16.60.2 255.255.255.0

Router(config-if)#no shut

 

%LINK-5-CHANGED: Interface Serial2/0, changed state to up

 

Router(config-if)#

%LINEPROTO-5-UPDOWN: Line protocol on Interface Serial2/0, changed state to up

 

Router(config-if)#exit

Router(config)#router eigrp 10

Router(config-router)#network 172.16.70.0 0.0.0.255

Router(config-router)#network 172.16.80.0 0.0.0.255

Router(config-router)#network 172.16.60.0 0.0.0.255

Router(config-router)#

%DUAL-5-NBRCHANGE: IP-EIGRP 10: Neighbor 172.16.60.1 (Serial2/0) is up: new adjacency

Router(config-router)#exit

Router(config)#exit

 

 

 

 Setting ACL :

 

1. Network 10.0 tidak boleh di akses oleh network 40.0

 

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router(config)#access-list 10 deny 172.16.40.0 0.0.0.255

Router(config)#access-list 10 permit any

Router(config)#int fa0/0

Router(config-if)#ip access-group 10 out

Router(config-if)#end

 

 

 

2. Network 10.7 tidak boleh di akses oleh network 10.5

 

Router#ena

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router(config)#access-list 110 deny ip host 172.16.10.5 host 172.16.50.7

Router(config)#access-list 110 permit ip any any

Router(config)#int fa1/0

Router(config-if)#ip access-group 110 out

Router(config-if)#end

 

 

 

3. Network 10.5 boleh mengakses Router 1 meggunakan telnel

Router#ena

Router#conf t

Enter configuration commands, one per line.  End with CNTL/Z.

Router(config)#access-list 20 permit host 172.16.10.5

Router(config)#line vty 0 4

Router(config-line)#access-class 20 in

Router(config-line)#end